No. 1 Story

HP job cuts loom for Australian employees

A number of Australian employees of Hewlett-Packard are facing the loss of their jobs as the global computer giant looks to slash its worldwide workforce by up to 30,000.

read more

Related Articles

Adoption of cloud computing has reached a tipping point  - but don’t expect legacy...
In yet another blow to the Facebook IPO this week, following the withdrawal of...
Recruitment technology and social media have played a significant role in growing business in...
Practical, affordable and long life fuel cells have been hyped up every now and...
Popular VoIP and messaging application Viber is already available on several smartphone platforms, and...

Attacker adds backdoor to WordPress blog software

Your IT - Home IT

If you downloaded the WordPress blogging software last week, be sure to upgrade to version 2.1.2. An unknown attacker modified two of the files in version 2.1.1, opening up a back door allowing remote execution of code.

The attacker managed to get user-level access to one of the wordpress.org servers, and took advantage of that to modify the software available for download.

"This is the kind of thing you pray never happens, but it did and now we’re dealing with it as best we can," founder Matt Mullenweg wrote in a statement posted on the WordPress web site. "Although not all downloads of 2.1.1 were affected, we’re declaring the entire version dangerous," he added.

Measures are being taken to prevent a repeat of the incident.

According to Symantec security response engineer Masaki Suenaga, "a user who visits a Web page on a server containing the hacked WordPress software is not at risk, so long as the server has not been compromised by other malicious threats downloaded by the back door."